CVE-2024-27766
An issue in MariaDB v.11.1 allows a remote attacker to execute arbitrary code via the lib_mysqludf_sys.so function. NOTE: this is disputed by the MariaDB Foundation because no privilege boundary is crossed.
- Affected products
- Mariadb
- Mariadb
- = 11.1.0
- CVSS 3.1
- 5.7 MEDIUM
- EPSS
- 1.3% (67th percentile)
- Weakness
- CWE-94
- NVD status
- Analyzed
- Published
- 2024-10-17
CVE-2024-27766 at NVD
3 known exploits for CVE-2024-27766
Proof-of-concept code and exploit modules indexed by Sploitus